首页 网络安全 安全学院 查看内容

Microsoft ISA Server NetBIOS预定义过滤策略绕过漏洞

2005-6-16 02:04 1147 0

摘要: 发布日期:2005-06-15更新日期:2005-06-15受影响系统: Microsoft ISA Server 2000 SP2不受影响系统: Microsoft ISA Server 2...
关键词: Microsoft Server ISA 漏洞 补丁 2005 2000 Security 日期 NetBIOS

发布日期:2005-06-15更新日期:2005-06-15受影响系统: Microsoft ISA Server 2000 SP2不受影响系统: Microsoft ISA Server 2004 Standard EditionMicrosoft ISA Server 2004 Enterprise Edition描述: BUGTRAQ  ID: 13954CVE(CAN) ID: CAN-2005-1216ISA Server是微软产品家族之一,可以提供企业防火墙和高性能的Web缓存。ISA Server 2000中存在权限提升漏洞,成功利用这个漏洞可以绕过策略限制。攻击者可以利用NetBIOS(all)预定义报文过滤同ISA Server创建NetBIOS连接。<*来源:Microsoft    链接:http://www.microsoft.com/technet/security/Bulletin/MS05-034.mspx        http://www.us-cert.gov/cas/techalerts/TA05-165A.html*>建议: 厂商补丁:Microsoft---------Microsoft已经为此发布了一个安全公告(MS05-034)以及相应补丁:MS05-034:Cumulative Security Update for ISA Server 2000 (899753)链接:http://www.microsoft.com/technet/security/Bulletin/MS05-034.mspx补丁下载:http://www.microsoft.com/downloads/details.aspx?FamilyId=E579813B-0372-45BE-8070-3F4D7D4CB89C
声明:文章版权归原作者所有 部分文章转自互联网 如有侵权请联系 [邮箱地址] 删除

路过

雷人

握手

鲜花

鸡蛋

最新评论

返回顶部